Tuesday, July 05, 2011

Hulu runs into security breach with Facebook Connect implementation

Facebook provides an API for third-party sites that wish to implement users' Facebook login credentials on their site for authentication called Facebook Connect. Hulu attempted to implement Facebook Connect on its site late last week, but ran into a security problem that allowed some Hulu users to access accounts of other Hulu users.

The problem resulted from a programming error, and when it was discovered, Hulu pulled the Facebook Connect code from its site.

Hulu was attempting to encourage Facebook users to share details about the shows they watch on Hulu with their Facebook friends before the security setback. Hulu indicates that that the breach did not expose affected users passwords or credit card information.